Dell EMC Data Protection Advisor versions 6.4, 6.5 and 18.1 contain an undocumented account with limited privileges that is protected with a hard-coded password. A remote unauthenticated malicious user with the knowledge of the hard-coded password may login to the system and gain read-only privileges.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Emc_data_protection_advisor | Dell | 6.4 (including) | 6.4 (including) |
Emc_data_protection_advisor | Dell | 6.5 (including) | 6.5 (including) |
Emc_data_protection_advisor | Dell | 18.1 (including) | 18.1 (including) |